Previous Topic: Configuring ArcotID OTP (EMV-Compliant) Authentication PolicyNext Topic: Creating Keys


Configuring Credential Management Keys

Keys are used to protect the shared secret that is used to generate and authenticate credentials, which include ArcotID PKI, OATH OTP, ArcotID OTP-OATH, and ArcotID OTP-EMV. The key used to create and manage the ArcotID PKI is called Domain Key and the keys used to create and manage other credentials are called Master Keys.

When the user tries to authenticate using their credential, AuthMinder first checks whether the right key is used to protect the credential. If the key is valid, then the user will be authenticated on providing the correct credential. Else, the user authentication fails.

By default, a key configuration is created when the AuthMinder Server is started for the first time. You can use this default configuration or create your own configuration using Credential Key Management page. You can create multiple key configurations, but only the configuration that is assigned to the credential type is used for creating credentials and authenticating those configurations. The other active configurations are used for authentication only.

This section walks you through: